GlaxoSmithKline Group of Companies
bd_40c0a79b9ea39c92 · schema v1 · pii pii-v1
Full breach record for GlaxoSmithKline Group of Companies →2 incidents on fileThe Lash Group, LLC, a third-party service provider for GlaxoSmithKline, reported a cybersecurity incident where data was exfiltrated from its systems. The breach, discovered on February 21, 2024, affected personal and health information of approximately 6,617 Washington residents. The incident involved unauthorized access and data theft, prompting notifications to affected individuals and credit monitoring services.
J jump to incidentP pin to compareR raw source
Incident timeline
Feb 21, 2024
Discovered
May 24, 2024
Filed
vs. sector median
+1 wks slower
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- Montana State AGbd_32998f8e492da8482024-05-24Candidate
- Indiana State AGbd_430d03658d2604792024-05-24Verified
Filing propagation · 3 filings · 3 states
View merged incident ↗Evidence ladder
Attacker assertion only. Establishes: claim date, group, alleged victim.
Unlocks: incident narrative, operational impact. Still no compliance clock.
Unlocks: discovery date, data types, affected count, compliance clock.
Unlocks: materiality, stated response, full audit trail. Ceiling removed.